Director, IT Information Security, Risk and Resiliency jobs in United States
cer-icon
Apply on Employer Site
company-logo

Unum · 8 hours ago

Director, IT Information Security, Risk and Resiliency

Unum is a Fortune 500 company driving a digital transformation and is looking for forward-thinking innovators. The Director of IT Information Security, Risk and Resiliency will lead a functional area within the Enterprise Information Security Risk Management department, responsible for developing and maintaining a global information security program.

FinanceFinancial ServicesInsurance
check
H1B Sponsor Likelynote

Responsibilities

Leads functional team(s) to successfully build, enhance, transform, or support security technology and/or secure business services by successfully delivering on outcomes
Engages in strategic planning with business and IT stakeholders, to provide direction, guidance or recommendations on technology, and architectural considerations
Actively participates in the definition of a security portfolio of change and roadmaps. Engages and influences IT and business leaders to ensure the portfolio will deliver agreed business objectives
Collaborating with IT leadership across various disciplines, provides guidance, direction or recommendations to address a wide range of business and technology needs, with emphasis on optimized, timely and successful delivery
In collaboration with their manager, initiates and influences relationships with and between key stakeholders in management, and implements IT plans, acts as a point of contact for stakeholders, planners, designers, and operational business partners
In partnership with practice leaders, drives application of the company’s technical and architectural roadmap objectives
Leverages deep understanding of IT, emerging technologies, and technical capabilities to guide and influence stakeholders and teams in developing solutions, build, deployment, testing and ongoing management of IT services
Takes bold action to ensure there is a strong, diverse talent and leadership pipeline in place to meet aggressive business goals. Develops, coaches and engages people to higher levels of performance
Understands the needs of a self-organizing team (cross-functioning, partners with the business, collaborative, works quickly and unencumbered, be empowered and autonomous, be able to focus on self-improvement) and supports the management activities that make self-organization successful
Understands patterns and trends that contribute to utilizing key performance indicators and critical success factors that will improve the performance of the organization
Continually monitors security trends, the threat landscape, regulatory requirements and industry best practices

Qualification

Information Security ManagementCyber Security RegulationsIdentityAccess ManagementAgile LeadershipSecurity FrameworksTechnical PlanningIncident Response ManagementStrategic ThinkingCommunication SkillsTeam LeadershipProblem SolvingPresentation Skills

Required

Bachelors degree in computer science, or relevant technical experience
Has 8+ years' experience in an IT field, or equivalent relevant work experience
Demonstrates leadership in executing IT plans successfully that enable technical or business capabilities and address technology or business priorities
Has strong understanding of Agile/Lean leadership principles
Exhibits courage by taking smart risks and encouraging others to do so; empowers innovative approaches by motivating others to be proactive and resourceful
Has proven and demonstrated knowledge and skills in one or more technologies or industries
Able to apply broad business and technology understanding of internal and external trends and capabilities to ensure successful implementation of IT plans
Able to communicate a compelling vision and need for change that generates excitement, enthusiasm and commitment to the process
Demonstrates strategic and critical thinking capability
Interacts with others, internally and externally, in a way that gives them confidence in their intentions and those of the organization
Understands the business case for each deliverable undertaken and works with their manager and product owner to help ensure benefits are realized
Has strong planning, communication and presentation skills, and the capability to listen and influence
Has in-depth knowledge of regulations, including, GLPA, HIPAA, GDPR, CCPA, and other cyber security regulatory compliance requirements and related programs
Has in-depth knowledge of security and control frameworks such as NIST Cyber Security Framework; ISO 17799/27001, CobIT and ITIL
Experience in implementing and supporting global identity and access management solutions (Identity Management, Access Management, Virtual Directory, SSO)
Knowledge and experience in IAM and/or other identity management systems, Web Access Management systems, and API integration
Experience in SSO (Single-Sign-On) technologies including Cloud, SAML and federation of identities (IdP initiated and SP initiated), multi-factor authentication
Experience on Privileged Account Management, Enterprise Certificate Management and Enterprise Token Services technologies
Experience with LDAP/Directory Services including Active Directory and Radiant Logic
Experience with RACF, DB2, SQL
Experience with Azure, O365 and AWS
Excellent working knowledge of one or more of the following security areas: Operating System Security (Windows, Apple, AIX, Linux, zOS), Internet Technologies (NNTP, Proxy, HTTP, HTTPS, HTLM, SSL, X.509), TCP/IP and networking (LAN/WAN/Wireless), Intrusion detection and prevention products, Incident response management, Public key infrastructure technologies including encryption, Kerberos, certification authorities, Application and network security assessments methodologies and tools, General access control security (Active Directory, Linux, and Mainframe security), IPSEC and remote access technologies, Incident response and case management, Experience in implementing and operating security technology such as firewalls, web application firewalls, multi-level security implementation, security assessment scanners, and security monitoring tools (e.g. IDS/IPS, SEIM, AV, Qualys, etc.), Experience in application and network security assessment methodologies, tools, and techniques, Experience in implementing and operating global end-point security products (anti-virus, anti-malware, hard drive encryption, DLP, etc.), Security Coding Standards (e.g. OWASP) and Secure Software Development Lifecycles, SOX and HIPPA compliance requirements and related programs

Preferred

Prior management experience is preferred
CISSP, CISM, CISA, SANS, and other security related certifications a plus

Benefits

Healthcare benefits (health, vision, dental)
Insurance benefits (short & long-term disability)
Performance-based incentive plans
Paid time off
401(k) retirement plan with an employer match up to 5% and an additional 4.5% contribution whether you contribute to the plan or not

Company

Since our founding in 1848, Unum has been a leader in the employee benefits business through innovation, integrity and an unwavering commitment to our customers.

H1B Sponsorship

Unum has a track record of offering H1B sponsorships. Please note that this does not guarantee sponsorship for this specific role. Below presents additional info for your reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (27)
2024 (23)
2023 (26)
2022 (19)
2021 (18)
2020 (7)

Funding

Current Stage
Public Company
Total Funding
$700M
2025-11-11Post Ipo Debt· $300M
2024-06-05Post Ipo Debt· $400M
1986-11-14IPO

Leadership Team

leader-logo
Curt Burghardt
Vice President People Delivery
linkedin
leader-logo
Mike Schubert
Vice President Of Technology
linkedin
Company data provided by crunchbase